TikTok
Responsibilities
Develop and execute IT audit plans, conduct risk assessments, and perform IT audit testing independently. Lead all phases of IT audits, from planning and fieldwork to reporting and remediation tracking. Conduct effective reviews of IT audits, providing value-added feedback to team members. Quantify technology risk exposure and clearly articulate business impacts of findings. Assess IT general controls (ITGCs), cybersecurity frameworks, cloud security, data privacy, and SDLC controls. Evaluate emerging IT risks and proactively identify control gaps in technology and security processes. Provide insights and recommendations to strengthen IT governance, risk management, and compliance (GRC). Assist in conducting the annual IT risk assessment with the Head of USDS IA. Manage third-party co-source partners to ensure IT audit objectives, timelines, and deliverables are met. Oversee and support future in-house IT audit hires. Prepare and review audit workpapers from future in-house and third-party audit consultants. Partner with IT, Security, Compliance, and Engineering teams to ensure adherence to industry standards and regulatory requirements. Serve as a collaborative partner with Global IA on joint IT audit initiatives. Monitor industry trends, regulatory developments, and best practices in IT risk management. Contribute to the development of IT audit methodologies, processes, and best practices within the newly formed team. Adapt to the evolving needs of the IA function — additional responsibilities may be assigned as the team grows. Qualifications
Minimum Qualifications: - 5+ years of IT audit experience, ideally in a technology company, Big 4 firm, or highly regulated industry. - Solid understanding of Sarbanes-Oxley (SOX) and COSO framework. - Bachelor’s degree or higher in Information Systems, Computer Science, Accounting, Finance, or a related field. - Strong knowledge of IT risk assessment, ITGCs, cybersecurity controls, cloud computing, and IT frameworks (e.g., NIST, ISO 27001, SOC 2, COBIT). - Experience managing in-house teams and co-source/third-party audit partners and leading complex audit engagements. - Experience engaging with IT, security, compliance, and engineering teams to assess risks and controls. Ability to work in a fast-paced, evolving environment with shifting priorities. - Strong interpersonal skills with a collaborative, relationship-driven approach. Willingness to travel domestically and internationally, depending on the audit area. Preferred Qualifications: - Professional certifications preferred: CPA, CIA, CISA. - Excellent communication, interpersonal, and written skills. About USDS
TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. U.S. Data Security (“USDS”) is a subsidiary of TikTok in the U.S. This new, security-first division was created to bring heightened focus and governance to our data protection policies and content assurance protocols to keep U.S. users safe. Our focus is on providing oversight and protection of the TikTok platform and U.S. user data, so millions of Americans can continue turning to TikTok to learn something new, earn a living, express themselves creatively, or be entertained. The teams within USDS that deliver on this commitment daily span across Trust & Safety, Security & Privacy, Engineering, User & Product Ops, Corporate Functions and more. USDS Reasonable Accommodation
USDS is committed to providing reasonable accommodations in our recruitment processes for candidates with disabilities, pregnancy, sincerely held religious beliefs or other reasons protected by applicable laws. If you need assistance or a reasonable accommodation, please reach out to us at https://tinyurl.com/USDS-RA Job Information
For Pay Transparency Compensation Description (Annually): The base salary range for this position in the selected city is $115,556 - $215,967 annually. Compensation may vary outside of this range depending on qualifications, skills, competencies and experience, and location. Base pay is one part of the Total Package that is provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives, and restricted stock units. Benefits may vary depending on the nature of employment and the country work location. Employees have day one access to medical, dental, and vision insurance, a 401(k) savings plan with company match, paid parental leave, short-term and long-term disability coverage, life insurance, wellbeing benefits, among others. Employees also receive 10 paid holidays per year, 10 paid sick days per year and 17 days of Paid Personal Time (prorated upon hire with increasing accruals by tenure). The Company reserves the right to modify or change these benefits programs at any time, with or without notice.
#J-18808-Ljbffr
Develop and execute IT audit plans, conduct risk assessments, and perform IT audit testing independently. Lead all phases of IT audits, from planning and fieldwork to reporting and remediation tracking. Conduct effective reviews of IT audits, providing value-added feedback to team members. Quantify technology risk exposure and clearly articulate business impacts of findings. Assess IT general controls (ITGCs), cybersecurity frameworks, cloud security, data privacy, and SDLC controls. Evaluate emerging IT risks and proactively identify control gaps in technology and security processes. Provide insights and recommendations to strengthen IT governance, risk management, and compliance (GRC). Assist in conducting the annual IT risk assessment with the Head of USDS IA. Manage third-party co-source partners to ensure IT audit objectives, timelines, and deliverables are met. Oversee and support future in-house IT audit hires. Prepare and review audit workpapers from future in-house and third-party audit consultants. Partner with IT, Security, Compliance, and Engineering teams to ensure adherence to industry standards and regulatory requirements. Serve as a collaborative partner with Global IA on joint IT audit initiatives. Monitor industry trends, regulatory developments, and best practices in IT risk management. Contribute to the development of IT audit methodologies, processes, and best practices within the newly formed team. Adapt to the evolving needs of the IA function — additional responsibilities may be assigned as the team grows. Qualifications
Minimum Qualifications: - 5+ years of IT audit experience, ideally in a technology company, Big 4 firm, or highly regulated industry. - Solid understanding of Sarbanes-Oxley (SOX) and COSO framework. - Bachelor’s degree or higher in Information Systems, Computer Science, Accounting, Finance, or a related field. - Strong knowledge of IT risk assessment, ITGCs, cybersecurity controls, cloud computing, and IT frameworks (e.g., NIST, ISO 27001, SOC 2, COBIT). - Experience managing in-house teams and co-source/third-party audit partners and leading complex audit engagements. - Experience engaging with IT, security, compliance, and engineering teams to assess risks and controls. Ability to work in a fast-paced, evolving environment with shifting priorities. - Strong interpersonal skills with a collaborative, relationship-driven approach. Willingness to travel domestically and internationally, depending on the audit area. Preferred Qualifications: - Professional certifications preferred: CPA, CIA, CISA. - Excellent communication, interpersonal, and written skills. About USDS
TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. U.S. Data Security (“USDS”) is a subsidiary of TikTok in the U.S. This new, security-first division was created to bring heightened focus and governance to our data protection policies and content assurance protocols to keep U.S. users safe. Our focus is on providing oversight and protection of the TikTok platform and U.S. user data, so millions of Americans can continue turning to TikTok to learn something new, earn a living, express themselves creatively, or be entertained. The teams within USDS that deliver on this commitment daily span across Trust & Safety, Security & Privacy, Engineering, User & Product Ops, Corporate Functions and more. USDS Reasonable Accommodation
USDS is committed to providing reasonable accommodations in our recruitment processes for candidates with disabilities, pregnancy, sincerely held religious beliefs or other reasons protected by applicable laws. If you need assistance or a reasonable accommodation, please reach out to us at https://tinyurl.com/USDS-RA Job Information
For Pay Transparency Compensation Description (Annually): The base salary range for this position in the selected city is $115,556 - $215,967 annually. Compensation may vary outside of this range depending on qualifications, skills, competencies and experience, and location. Base pay is one part of the Total Package that is provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives, and restricted stock units. Benefits may vary depending on the nature of employment and the country work location. Employees have day one access to medical, dental, and vision insurance, a 401(k) savings plan with company match, paid parental leave, short-term and long-term disability coverage, life insurance, wellbeing benefits, among others. Employees also receive 10 paid holidays per year, 10 paid sick days per year and 17 days of Paid Personal Time (prorated upon hire with increasing accruals by tenure). The Company reserves the right to modify or change these benefits programs at any time, with or without notice.
#J-18808-Ljbffr